11.07.2015 Views

Catalyst 3750-E and 3560-E Switch Cisco IOS ... - DNIP . NET

Catalyst 3750-E and 3560-E Switch Cisco IOS ... - DNIP . NET

Catalyst 3750-E and 3560-E Switch Cisco IOS ... - DNIP . NET

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Chapter 2<strong>Catalyst</strong> <strong>3750</strong>-E <strong>and</strong> <strong>3560</strong>-E <strong>Switch</strong> <strong>Cisco</strong> <strong>IOS</strong> Comm<strong>and</strong>sfallback profilefallback profileUse the fallback profile global configuration comm<strong>and</strong> on the switch stack or on a st<strong>and</strong>alone switch tocreate a fallback profile for web authentication. To return to the default setting, use the no form of thiscomm<strong>and</strong>.fallback profile profileno fallback profileSyntax Descriptionprofile Specify the fallback profile for clients that do not support IEEE 802.1xauthentication.DefaultsNo fallback profile is configured.Comm<strong>and</strong> ModesGlobal configurationComm<strong>and</strong> HistoryRelease12.2(35)SE2ModificationThis comm<strong>and</strong> was introduced.Usage GuidelinesThe fallback profile is used to define the IEEE 802.1x fallback behavior for IEEE 802.1x ports that donot have supplicants. The only supported behavior is to fall back to web authentication.After entering the fallback profile comm<strong>and</strong>, you enter profile configuration mode, <strong>and</strong> theseconfiguration comm<strong>and</strong>s are available:• ip: Create an IP configuration.• access-group: Specify access control for packets sent by hosts that have not yet been authenticated.• admission: Apply an IP admission rule.ExamplesThis example shows how to create a fallback profile to be used with web authentication:<strong>Switch</strong># configure terminal<strong>Switch</strong>(config)# ip admission name rule1 proxy http<strong>Switch</strong>(config)# fallback profile profile1<strong>Switch</strong>(config-fallback-profile)# ip access-group default-policy in<strong>Switch</strong>(config-fallback-profile)# ip admission rule1<strong>Switch</strong>(config-fallback-profile)# exit<strong>Switch</strong>(config)# interface gigabitethernet 1/0/1<strong>Switch</strong>(config-if)# dot1x fallback profile1<strong>Switch</strong>(config-if)# endYou can verify your settings by entering the show running-configuration [interface interface-id]privileged EXEC comm<strong>and</strong>.OL-9776-08<strong>Catalyst</strong> <strong>3750</strong>-E <strong>and</strong> <strong>3560</strong>-E <strong>Switch</strong> Comm<strong>and</strong> Reference2-195

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!